7.2
CVSSv2

CVE-1999-1390

Published: 28/04/1998 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 2.0

Exploits

source: wwwsecurityfocuscom/bid/94/info /usr/bin/suidexec will execute arbitrary commands as root, as soon as just _one_ suid root shell script can be found on the system: Just invoke /usr/bin/suidexec <your program> /path/to/script - it will happily execute your program with euid = 0 This is completely sufficient for doing arbit ...